This job has expired

This job posting is no longer active and is not accepting applications. Explore similar roles below!

Base-2 Solutions
Posted 3w ago

Information System Security Officer

Base-2 Solutions
Annapolis Junction, Maryland, United States
OnsiteFull Time
Responsibilities
  • ensuring compliance
  • updating documentation
  • mitigating findings
Requirements
  • Requires a bachelor's degree or equivalent experience
  • 9+ years of relevant experience
  • Security policy and risk assessment expertise
  • Vulnerability mitigation
  • Incident response, and active Top Secret/SCI clearance with CI polygraph
Technical tools mentioned
XactaRisk Management Framework (RMF)System Security Plans (SSPs)Security Control Trace Matrices (SCTM)Security Test Plans (STPs)Plans of Action and Milestones (POAMs)STIGACAS

Job description

  • Requisition ID: 3570
  • Standard Title:
  • Required Security Clearance: Top Secret/SCI with CI Polygraph
  • Location: Annapolis Junction, MD
  • Work Type: On-Site
  • Shift: First
  • Referral Eligibility: Eligible
  • U.S. Citizenship Required? Yes


Position Summary


Base-2 Solutions is seeking an Information System Security Officer to work with application leads, system administrators, database administrators, developers, and testers to ensure assigned systems are security compliant and achieve or maintain Authority to Operate (ATO). The role includes following the Risk Management Framework (RMF) process for full test, partial test, continuous monitoring (CONMON), and no test scenarios, updating Xacta documentation such as System Security Plans (SSPs), Security Control Trace Matrices (SCTM), Security Test Plans (STPs), and Plans of Action and Milestones (POAMs), loading artifacts including STIG checklists and ACAS scans, implementing STIG checklists and mitigating scan findings, supporting security assessment events, and responding to inquiries from the Security Test and Evaluation (PAT) team, Information System Security Managers (ISSMs), and Security Control Assessors (SCAs).


Essential Duties and Responsibilities


  • Work with application leads, system administrators, database administrators, developers, and testers to ensure systems are security compliant and achieve or maintain ATO.

  • Follow the RMF process for full test, partial test, CONMON, and no test.

  • Update Xacta documentation including SSPs, SCTM, STPs, and POAMs.

  • Load artifacts such as STIG checklists and ACAS scans.

  • Help implement STIG checklists and mitigate scan findings.

  • Answer questions to ensure systems are developed with security compliance built in.

  • Support security assessment events and respond to all questions from PAT team, ISSMs, and SCAs.


Required Qualifications


  • Bachelor's degree in computer science, software engineering, or a field applicable to the position required.

  • 9 or more years of relevant experience required with a Bachelor's degree.

  • Additional experience may be considered in lieu of degree.

  • Demonstrated experience in developing, implementing, and enforcing security policies, standards, and procedures to ensure regulatory compliance and protect organizational information assets.

  • Proven track record in conducting risk assessments and identifying vulnerabilities in systems, networks, and applications.

  • Experience in developing and overseeing implementation of mitigation strategies to reduce security risks.

  • Strong background in monitoring systems and networks for security breaches and suspicious activity.

  • Successful history of responding to security incidents, investigating root causes, and implementing corrective actions.


Preferred Qualifications


  • Comprehensive knowledge of relevant laws, regulations, and industry standards.

  • Experience conducting audits and assessments to verify adherence to security requirements.


Required Education and Experience Equivalency


  • High School with 13 years of experience.

  • Associates with 11 years of experience.

  • Bachelor's with 9 years of experience.

  • Master's with 7 years of experience.

  • PhD with 5 years of experience.


Required Certifications


  • None specified.


Required Security Clearance


  • Active Top Secret/SCI with CI Polygraph

Pay & Benefit Highlights

Compensation

  • Competitive fixed salary or hourly pay (based on experience, skills, location, and internal equity).
  • Employee referral bonuses up to $10,000 per hired referral.
  • Additional bonus opportunities for exceptional performance and contributions to business development and company growth (role-dependent).

Health

  • 100% company-paid medical premiums for employees and eligible dependents.
  • Choose from multiple plan options with CareFirst, Kaiser, and UnitedHealthcare, including PPO, POS, HMO, and HSA-compatible plans.
  • 100% company-paid dental premiums for employees and eligible dependents.
  • 100% company-paid vision premiums for employees and eligible dependents.

Income Protection

  • 100% company-paid premiums for short-term disability.
  • 100% company-paid premiums for long-term disability.
  • 100% company-paid premiums for accidental death & dismemberment (AD&D).
  • 100% company-paid premiums for life insurance up to $200,000.

Retirement

  • 401(k) with immediate vesting: 4% company match plus a 4% non-elective company contribution (8% total).
  • 401(k) pre-tax and Roth options.

Leave

  • Up to 20 days of flexible paid time off (PTO).
  • 11 paid floating holidays.

Work-Life Balance

  • Flexible work schedules, including flex time and compressed work periods (contract and project-dependent).

About Base-2 Solutions

Delivers engineering and technology services for national security.

Year founded
2016
Employees
60
Organization type
Private
Headquarters
US

Similar jobs

Information System Security Officer roles near Annapolis Junction, Maryland
9h
Save
Mark Applied
Hide
Information System Security Officer 3
Fort Meade or Virginia or Colorado or Texas or Utah or Alaska or Hawaii or Oceania
$48-$110/hr OnsiteFull Time
Wyetech
Wyetech: Computer engineering services firm supporting federal government missions.
5+ YOERequires TS/SCI with agency-appropriate polygraph, IAM Tier 1 certification, and relevant experience through a degree, military coursework, or high school/GED pathway. Knowledge of RMF, NIST 800-53, and security architecture preferred.
Risk Management Framework (RMF), NIST 800-53, System Security Plans (SSPs), STE, STN
15h
Save
Mark Applied
Hide
Senior Information System Security Officer
Chantilly, Virginia, United States
$115k-$190k/yr OnsiteFull Time
ManTech International
ManTech International: Advancing the future of defense through innovative technology.
7+ YOERequires 7+ years as an ISSO, 9+ years in computer science or cybersecurity, active Top Secret clearance, SCI eligibility, polygraph, and IAM Level III certification.
Tenable Nessus, Security Center, IBM Guardium, HP WebInspect, Network Mapper (NMAP), Governance, Risk, and Compliance (GRC)
15h
Save
Mark Applied
Hide
Information System Security Officer (ISSO) - FULLY CLEARED with POLYGRAPH REQUIRED
Fort Meade or Virginia or Colorado or Texas or Utah or Florida or Hawaii
$170k-$180k/yr OnsiteFull Time
Constellation Technologies
Constellation Technologies: Maryland government contractor providing cyber, data analytics, and engineering services to Intelligence Community and Defense clients.
8+ YOERequires U.S. citizenship, active TS/SCI clearance with a polygraph within five years, 8 years of relevant experience, and a bachelor's degree in a related field or four additional years of experience.
Windows, Linux, Red Hat Enterprise Linux, AWS, IAVA, RMF, NIST 800-53
1d
Save
Mark Applied
Hide
Information System Security Officer - Jr.
Washington, District of Columbia, United States
$73k-$149k/yr OnsiteFull Time
CACI
CACINYSE: CACI: Provider of specialized IT and mission-critical government services.
5+ YOEU.S. citizenship, bachelor's degree plus 5 years applicable experience or equivalent, RMF/FISMA/NIST knowledge, security documentation experience, continuous monitoring, and vulnerability management required.
Risk Management Framework (RMF), FISMA, NIST SP 800-37, NIST SP 800-53, CSAM, RegScale, eMASS, FedRAMP, CompTIA Security+, ISACA CISA, CISSP, CompTIA SecurityX
1d
Save
Mark Applied
Hide
Information System Security Officer - Jr.
Washington, District of Columbia, United States
$73k-$149k/yr OnsiteFull Time
CACI
CACINYSE: CACI: Provider of specialized IT and mission-critical government services.
U.S. citizenship, bachelor's degree plus 5 years of applicable experience or equivalent, RMF, FISMA, NIST, security documentation, continuous monitoring, and vulnerability management knowledge required.
Risk Management Framework (RMF), FISMA, NIST SP 800-37, NIST SP 800-53, CSAM, RegScale, eMASS, FedRAMP, Microsoft?
3d
Save
Mark Applied
Hide
Senior Information System Security Officer (ISSO)
Washington, D.C., District of Columbia, United States
OnsiteFull Time, Contract
C3EL
C3EL: Woman-owned U.S. systems integrator delivering engineering, IT, cybersecurity, communications, and logistics services to defense and federal agencies.
7+ YOERequires U.S. citizenship, Tier 4 High-Risk Public Trust eligibility, 7+ years of cybersecurity, 5+ years of federal RMF/A&A/ISSO/authorization work, and knowledge of NIST, FISMA, and cloud security.
CSAM, Risk Management Framework (RMF), FedRAMP, Azure Government, Microsoft 365 GCC/GCC High, Entra ID, Okta, GRC, ITSM, SIEM, NIST SP 800-37, NIST SP 800-53, NIST SP 800-53B, FIPS 199, FISMA, CISA, OMB
3d
Save
Mark Applied
Hide
ISSO Lead
Washington, District of Columbia, United States
OnsiteFull Time
Paragon Corporation
Paragon Corporation: Cambodian engineering, construction, real-estate, trading, agriculture, mining, and consulting group serving government and private clients.
8+ YOEBachelor's degree, 8+ years of relevant experience, CISSP/CISM or equivalent certification, U.S. citizenship, final Secret clearance, and experience with RMF, FISMA, A&A, ATO, and cybersecurity documentation.
Risk Management Framework (RMF), Assessment and Authorization (A&A), System Security Plans (SSPs), Plans of Action and Milestones (POA&Ms), FIPS 199, NIST SP 800-60, NIST SP 800-53 Rev. 5, NIST SP 800-37 Rev. 2, DevSecOps, Tenable Nessus, Wiz
3d
Save
Mark Applied
Hide
Information System Security Officer
United States or Woodbridge
OnsiteFull Time, Contingent
Zeiders Enterprises
Zeiders Enterprises: Veteran-owned U.S. government contractor providing human services and program-management solutions for military, veteran, and family communities.
7+ YOEBachelor's degree in a technical field, 7+ years of information system security or cybersecurity compliance experience, federal framework and security authorization experience, U.S. citizenship, driver's license, transportation, and auto insurance required.
Microsoft Office Suite, Microsoft Excel, Microsoft Word, Microsoft PowerPoint, Microsoft Outlook, AWS
This job has expired